IN THE CLAIMS : 

Please amend claims 1-3, 5-11, and 13-18, add new claims 19-26, and cancel 
claims 4 and 12 as follows. 

1 . (Currently amended) An apparatus, A communication syst e m comprising : 
a us e r e quipm e nt; 

an acc e ss n e twork to which said us e r e quipm e nt is attachable; and 

an access controller connected to sakl-an access network and a domain, wherein 
the access network is configured to attach to user equipment; 

wherein said access controller arrang e d is configured t o control resolving of 
domain name information for both server addresses within said domain or accessible via 
said domain, and server addresses that are not within said domain or accessible via said 
domain; and 

wherein said access controller is configured to: 

receive a qu e ry from said user equipment a query identifying a domain name; and 
in response to a determination that said user equipment is authorized and there is 
specified for said domain name a server address within said domain or accessible via said 
domain resolve domain name information for said domain name within said domain; and 
in response to a determination that the user equipment is not authorized and/or that 
there is no specified server address for said domain name within said domain or 
accessible via said domain resolve the domain name information for said domain name 
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outside said domain, for a s e rvic e provided by said domain or a s e rvice accessibl e via 
said domain, to d e t e rmin e if said us e r e quipm e nt is authoriz e d and, if so, to p e rmit said 
us e r e quipm e nt to obtain said sendee from or via said domain. 

2. (Currently amended) A syst e m An apparatus as claimed in claim 1, wherein 
said access network comprises one of: 

an fP -internet protocol based network independent of access method; 
a wireless local area network WLAN; 
a digital subscriber line B Sfc-network; 
an ethernet Eth e rn e t ; 

a general packet radio service G PRS-network; 
a third generation wireless ^ -network; and 
a Blu e tooth wireless personal area network. 

3. (Currently amended) An apparatus A syst e m as claimed in claim 1, wherein 
said domain is a mobile operator operated domain. 

4. (Cancelled) 
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5. (Currently amended) An apparatus A system as claimed in claim 1, 
comprising an authorization server function wherein said access controller is arrang e d 
configured to determine if authoriz e said user equipment is authorized by communication 
with said authorization server function. 

6. (Currently amended) An apparatus A system as claimed in claim 5 5 wherein 
said authorization server function comprises information defining a profile for said user 
equipment. 

7. (Currently amended) An apparatus A syst e m as claimed in claim 5 5 wherein 
said authorization server function is arranged configured to provide attributes to said 
access controller, said access controller arrang e d configured to determine session 
parameters for said user equipment based on said attributes. 

8. (Currently amended) An apparatus A syst e m as claimed in claim 1, wherein 
said access controller is arrang e d configured to provide an authorization function in the 
event that said query received from said user equipment identifies said access 
controller. 



9. (Currently amended) An apparatus A syst e m as claimed in claim 1, wherein 
said access controller is arranged configured to provide an authorization function in the 
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event thattf said query received from said user equipment identifies said access controller 
as a primary domain name server. 

10. (Currently amended) An apparatus A syst e m as claimed in claim 8 ? wherein 
said query comprises a DHCP dynamic host configuration protocol query. 

1 1 . (Currently amended) An apparatus A syst e m as claimed in claim 1, wherein 
the access controller is configured to in response to a determination that i f th e acc e ss 
controll e r det e rmin e s that said user equipment is not authorize d resolve said domain 
name at a server of the access network. 5 a r e quir e d s e rvice or an IP addr e ss of an 
Internet host is obtain e d via said access network conn e ct e d to th e Intern e t. 

12. (Cancelled) 

13. (Currently amended) An acc e ss controll e r for us e in a communication A 
system, comprising compris e s : 

a-user equipment; 

an access network to which said user equipment is configured to attach attachabl e, 
an access controller said access controll e r being configured to connect conn e ctabl e 
to said access network; 

and a domain to which said access controller is connected; 
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7 wherein said access controller is configured to control resolving of domain name 
information for both server addresses within said domain or accessible via said domain, 
and server addresses that are not within said domain or accessible via said domain; and 

wherein said access controller is configured to: 

receive from said user equipment a query identifying a domain name; and 
in response to a determination that said user equipment is authorized and there is 
specified for said domain name a server address within said domain or accessible via said 
domain resolve domain name information for said domain name within said domain; and 
in response to a determination that said user equipment is not authorized and/or 
that there is no specified server address for said domain name within said domain or 
accessible via said domain resolve the domain name information for said domain name 
outside said domain. 

wh e r e in said acc e ss controller is arrang e d to r e c e iv e a query from said us e r 
e quipm e nt for a servic e provid e d by said domain, or a patent practic e s e rvice acc e ssible 
via said domain, to ch e ck if said us e r e quipm e nt is authoriz e d and, if so, to permit said 
us e r e quipm e nt to obtain said servic e from or via said domain. 

14. (Currently amended) A system controller -as claimed in claim 13, wherein 
said access controller is arrang e d configured to determine when authorize said user 
equipment is authorized by communication with an authorization server function. 
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15. (Currently amended) A system controller as claimed in claim 13, wherein 
said access controller is arrang e d configured t o provide an authorization function in the 
event that tf -the query received from said user equipment identifies said access controller. 

16. (Currently amended) A system controll e r as claimed in claim 13, wherein 
said access controller is configured to in response to a determination that i ^said user 
equipment is not authorized resolve domain name information for said domain name r -the 
access controll e r is arrang e d to qu e ry aLa server of said access networ k in r e sponse to th e 
qu e ry . 

17. (Currently amended) A communication method, comprising: 

receiving a query at an access controller connected to a domain and an access 
network from user equipment attached to said an access network for a s e nde e provid e d 
by a domain or a servic e acc e ssibl e via said domain a query identifying a domain name ; 

ch e cking if said us e r e quipment is authoriz e d; and 

in response to a determination that said user equipment is authorized and there is 
specified for said domain name a server address within said domain or accessible via said 
domain resolving domain name information for said domain name within said domain; 
and 

in response to a determination that said user equipment is not authorized and/or 
that there is no specified server address for said domain name within said domain or 
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accessible via said domain resolving the domain name information for said domain name 
outside said domain, 

if so, p e rmitting said user e quipm e nt to obtain said service from or via said 
domain. 

1 8 . (Currently amended) A communication syst e m An apparatus , comprising : 
receiving means for receiving a qu e ry at an access controller connected to an 
access network and a domain from user equipment attached to an -said access network Iof 
a s e rvic e provid e d by a domain or a s e rvic e acc e ssible via said domai n a query identifying 
a domain name ; 

ch e cking m e ans for ch e cking if said user e quipment is authoriz e d; and 
controlling means for in response to a determination that said user equipment is 
authorized and there is specified for said domain name a server address within said 
domain or accessible via said domain resolving domain name information for said 
domain name within said domain; and in response to a determination that said user 
equipment is not authorized and/or that there is no specified server address for said 
domain name within said domain or accessible via said domain resolving domain name 
information for said domain name outside said domain. 

if so, p e rmitting m e ans for permitting said user equipm e nt to obtain said s e rvic e 
from or via said domain. 
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19. (New) A method as claimed in claim 17, wherein said access network 
comprises one of: 

an internet protocol based network independent of access method; 
a wireless local area network; 
a digital subscriber line network; 
an ethemet; 

a general packet radio service network; 
a third generation wireless network; and 
a wireless personal area network. 

20. (New) A method as claimed in claim 17, wherein said domain is a mobile 
operator operated domain. 

21. (New) A method as claimed in claim 17, comprising determining if said 
user equipment is authorized by communicating with an authorization server function. 

22. (New) A method as claimed in claim 21, wherein said authorization server 
function comprises information defining a profile for said user equipment. 

23. (New) A method as claimed in claim 21, wherein said authorization server 
function provides attributes to said access controller, and wherein the method further 
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comprises determining session parameters for said user equipment based on said 
attributes. 

24. (New) A method as claimed in claim 17, further comprising providing an 
authorization function in the event that said query received from said user equipment 
identifies said access controller. 

25. (New) A method as claimed in claim 17, further comprising providing an 
authorization function in the event that said query received from said user equipment 
identifies said access controller as a primary domain name server. 

26. (New) A method as claimed in claim 17, comprising in response to a 
determination that said user equipment is not authorized, resolving domain name 
information for said domain name at a server of said access network. 
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